Loading HuntDB...

GHSA-7g8j-7wv5-6f7h

GitHub Security Advisory

⚠ Unreviewed HIGH Has CVE

Advisory Details

When entered directly, Reader Mode did not strip the username and password section of URLs displayed in the addressbar. This can be used for spoofing the domain of the current page. This vulnerability affects Firefox < 54.

Related CVEs

Key Information

GHSA ID
GHSA-7g8j-7wv5-6f7h
Published
May 14, 2022 3:12 AM
Last Modified
May 14, 2022 3:12 AM
CVSS Score
7.5 /10
Primary Ecosystem
Unknown
Primary Package
Unknown
GitHub Reviewed
✗ No

Dataset

Last updated: September 14, 2025 6:31 AM

Data from GitHub Advisory Database. This information is provided for research and educational purposes.